About the role

  • FedRAMP GRC Intern supporting security and compliance programs for U.S. government customers. Gaining practical experience in cybersecurity, governance, risk, and compliance.

Responsibilities

  • Help maintain the FedRAMP System Security Plan (SSP), policies, procedures, and system diagrams and adopt 20x lessons.
  • Collect and organize audit evidence for monthly and quarterly continuous monitoring activities.
  • Support updates to Plans of Action and Milestones (POA&Ms) by verifying remediation progress and documenting results.
  • Review vulnerability, patching, and configuration reports; summarize findings in dashboards or status updates.
  • Assist in preparing artifacts for 3PAO and agency reviews, and help coordinate walkthroughs or sampling sessions.
  • Contribute to playbooks, checklists, and documentation improvements.
  • Identify automation & improvement opportunities (data cleanup, report generation, or evidence tracking).
  • Collaborate with teams across Security, Cloud Engineering, Product, and Legal on changes or processes that affect FedRAMP.

Requirements

  • Currently pursuing a bachelor’s or master’s degree in Cybersecurity, Information Assurance, Computer Science, MIS, or a related discipline.
  • Strong written communication and attention to detail.
  • Ability to turn technical details into clear, structured documentation.
  • Familiarity with one or more of the following: Security and compliance frameworks such as NIST SP 800-53, FedRAMP, or NIST SP 800-171.
  • Security concepts like vulnerability management, configuration baselines, or log analysis.
  • Cloud technologies (AWS, Azure, GCP).
  • Experience with productivity or workflow tools (Jira, Confluence, N8N etc.).
  • Comfortable working with datasets; basic scripting knowledge (Python, Go, or similar) is helpful but not required.
  • Coursework or certifications in cybersecurity or compliance (Security+, CAP, or similar) preferred.
  • Experience (personal experience is acceptable) with vulnerability scanning tools (Tenable/Nessus) or security benchmarks (CIS, STIG).
  • Prior internship, lab, or research experience in security, compliance, or IT operations.
  • Military or public sector experience — especially if you’re transitioning from service — is highly valued.

Benefits

  • Medical, Dental, and Vision Insurance.
  • Telehealth coverage
  • Flexible work schedules and work from home opportunities
  • Development and career growth opportunities
  • Open Time Off in addition to 10 paid holidays
  • 401(k) matching program
  • Adoption Assistance
  • Fertility treatments

Job title

GRC Intern

Job type

Experience level

Entry level

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job